Friday, March 13th 2020
Microsoft Patches Critical SMBv3 Protocol Vulnerability
Microsoft today released updates to Windows 10 patching a critical vulnerability found in its Server Message Block (SMB) version 3 protocol. Released to Windows 10 versions 1903 and 1909, the Cumulative Update KB4551762 includes a patched SMB 3.1.1 protocol component. The update mitigates a security vulnerability with SMBv3 chronicled under CVE-2020-0796, which enabled remote code execution. "To exploit the vulnerability against a server, an unauthenticated attacker could send a specially crafted packet to a targeted SMBv3 server. To exploit the vulnerability against a client, an unauthenticated attacker would need to configure a malicious SMBv3 server and convince a user to connect to it," reads the Microsoft security advisory. To get the update, simply make Windows Update "check for updates," or get the msu files from the link below.
DOWNLOAD: Windows 10 and Windows Server Cumulative Update KB4551762
DOWNLOAD: Windows 10 and Windows Server Cumulative Update KB4551762
4 Comments on Microsoft Patches Critical SMBv3 Protocol Vulnerability